package com.nowcoder.community.controller;

import com.google.code.kaptcha.Producer;
import com.nowcoder.community.entity.User;
import com.nowcoder.community.service.UserService;
import com.nowcoder.community.util.CommunityConstant;
import com.nowcoder.community.util.CommunityUtil;
import com.nowcoder.community.util.RedisKeyUtil;
import org.apache.commons.lang3.StringUtils;
import org.slf4j.Logger;
import org.slf4j.LoggerFactory;
import org.springframework.beans.factory.annotation.Autowired;
import org.springframework.beans.factory.annotation.Value;
import org.springframework.data.redis.core.RedisTemplate;
import org.springframework.security.core.context.SecurityContextHolder;
import org.springframework.stereotype.Controller;
import org.springframework.ui.Model;
import org.springframework.web.bind.annotation.CookieValue;
import org.springframework.web.bind.annotation.PathVariable;
import org.springframework.web.bind.annotation.RequestMapping;
import org.springframework.web.bind.annotation.RequestMethod;

import javax.imageio.ImageIO;
import javax.servlet.ServletOutputStream;
import javax.servlet.http.Cookie;
import javax.servlet.http.HttpServletRequest;
import javax.servlet.http.HttpServletResponse;
import javax.servlet.http.HttpSession;
import java.awt.image.BufferedImage;
import java.io.IOException;
import java.util.Map;
import java.util.concurrent.TimeUnit;

@Controller
public class LoginController implements CommunityConstant {

    private static final Logger logger = LoggerFactory.getLogger(LoginController.class);

    @Autowired
    private UserService userService;

    @Autowired
    private Producer kaptchaProducer;

    @Autowired
    private RedisTemplate redisTemplate;

    @Value("${server.servlet.context-path}")
    private String contextPath;

    // 点击注册，转换到注册页面
    @RequestMapping(value = "/register", method = RequestMethod.GET)
    public String getRegisterPage(){
        return "site/register";
    }

    // 访问登录页面
    @RequestMapping(value = "/login", method = RequestMethod.GET)
    public String getLoginPage(){
        return "site/login";
    }

    /**
     * 注册功能
     * @param model
     * @param user
     * @return 注册页面
     */
    @RequestMapping(value = "/register", method = RequestMethod.POST)
    public String register(Model model, User user){ // user与注册页面中表单input标签中的name相同，spring会自动传给user.username等属性
        Map<String, Object> map = userService.register(user);
        if(map == null || map.isEmpty()){ // 注册成功，返回一个操作结果的页面
            model.addAttribute("msg", "注册成功，我们已经向您的邮箱发送了一封激活邮件，请尽快激活");
            model.addAttribute("target", "/index");
            return "site/operate-result";
        }else{
            model.addAttribute("usernameMsg", map.get("usernameMsg"));
            model.addAttribute("passwordMsg", map.get("passwordMsg"));
            model.addAttribute("emailMsg", map.get("emailMsg"));

            return "site/register";
        }
    }

    /**
     * 激活
     */
    // http://localhost:8080/community/activation/用户id/激活码
    @RequestMapping(value = "/activation/{userId}/{code}", method = RequestMethod.GET)
    public String activation(Model model, @PathVariable("userId") int userId, @PathVariable("code") String code){
        int result = userService.activation(userId, code);
        if(result == ACTIVATION_SUCCESS){
            model.addAttribute("msg", "激活成功，您的帐号已经可以正常使用了");
            model.addAttribute("target", "/login");
        }else if(result == ACTIVATION_REPEAT){
            model.addAttribute("msg", "无效操作！该账号已经激活了！");
            model.addAttribute("target", "/index");
        }else {
            model.addAttribute("msg", "激活失败！您提供的激活码不正确！");
            model.addAttribute("target", "/index");
        }
        return "site/operate-result";
    }


    /**
     * 生成验证码
     * 由于是个图片，将其放在response中手动返回，并且是敏感数据涉及多次请求，（需要使用session）后期放到redis中
     * @param response
     * @param session
     */
    @RequestMapping(value = "/kaptcha", method = RequestMethod.GET)
    public void getKaptcha(HttpServletResponse response, HttpSession session){
        // 生成验证码
        String text = kaptchaProducer.createText();
        BufferedImage image = kaptchaProducer.createImage(text);

        // 将验证码存入session
        // session.setAttribute("kaptcha", text);

        // 验证码的归属(一个随机生成的字符串)
        String kaptchaOwner = CommunityUtil.generateUUID();
        // 将凭证发给客户端，需要用cookie保存
        Cookie cookie = new Cookie("kaptchaOwner", kaptchaOwner);
        // 设置cookie的生存时间
        cookie.setMaxAge(60);
        // 设置路径 整个访问路径都有效 /comment
        cookie.setPath(contextPath);
        // 发送给客户端
        response.addCookie(cookie);

        // 将验证码存入redis
        String redisKey = RedisKeyUtil.getKaptchaKey(kaptchaOwner);
        redisTemplate.opsForValue().set(redisKey, text, 60, TimeUnit.SECONDS);

        // 将图片输出给浏览器
        response.setContentType("image/png");
        try {
            ServletOutputStream os = response.getOutputStream();
            ImageIO.write(image, "png", os);
        } catch (IOException e) {
            logger.error("响应验证码失效" + e.getMessage());
        }
    }

    /**
     * 登录操作
     * @param username 账户
     * @param password 密码
     * @param code 验证码
     * @param rememberMe 记住我的密码和账户的一个小标实
     * @param model
//     * @param session 验证码在session中
     * @param response 登陆成功后，需要将ticket发放给客户端让其保存，需使用cookie保存
     * @return
     */
    @RequestMapping(value = "/login", method = RequestMethod.POST)
    public String login(String username, String password, String code, boolean rememberMe,
                        Model model, /*HttpSession session, */ HttpServletResponse response,
                        @CookieValue("kaptchaOwner") String kaptchaOwner){
        // 判断验证码是否一致
        // String kaptcha = (String) session.getAttribute("kaptcha");

        // 从redis中取出kaptcha
        String kaptcha = null;
        if(StringUtils.isNoneBlank(kaptchaOwner)){
            String redisKey = RedisKeyUtil.getKaptchaKey(kaptchaOwner);
            kaptcha = (String) redisTemplate.opsForValue().get(redisKey);
        }

        if(StringUtils.isBlank(code) || StringUtils.isBlank(kaptcha) || !kaptcha.equalsIgnoreCase(code)){
            model.addAttribute("codeMsg", "验证码不正确");
            return "site/login";
        }

        // 检查账号，密码
        int expiredSecond = rememberMe ? REMEMBER_EXPIRED_SECONDS : DEFAULT_EXPIRED_SECONDS;
        Map<String, Object> map = userService.login(username, password, expiredSecond);
        if(map.containsKey("ticket")){
            Cookie cookie = new Cookie("ticket", map.get("ticket").toString());
            cookie.setPath(contextPath);
            cookie.setMaxAge(expiredSecond);
            response.addCookie(cookie);
            return "redirect:/index";
        }else{
            model.addAttribute("usernameMsg", map.get("usernameMsg"));
            model.addAttribute("passwordMsg", map.get("passwordMsg"));
            return "site/login";
        }

    }

    @RequestMapping(path = "/logout", method = RequestMethod.GET)
    public String logout(@CookieValue("ticket") String ticket) {
        userService.logout(ticket);
        SecurityContextHolder.clearContext();
        return "redirect:/login";
    }
}
















